I got a message from someone regarding this thread today. In the spirit of transparency, instead of privately answering them, i'm going to publicly post a response.
A couple of data points:
a) Bittrex was not notified of the failed attempt to attack our exchange. I was made aware of the attempt to social engineer our process on March 17th, around 1 am PST, when talking to the developers in the NEM slack.
b) Someone deposited funds to our exchange and tried to social engineer double crediting of a single deposit of coins. This is not a flaw with NEM; If an exchange isn't properly tracking txids, someone can try to double claim something deposited. We have multiple layers to safeguard against that.
c) The withdrawal of properly credited funds were coincidentally delayed that evening because the NEM wallet produced an error. "2016-03-16 06:35:57.936 INFO chain update of 4 blocks (0 transactions) needed 97767 ms (0 μs/tx) --> That means his system was basically dead. Might be memory problems or something else." After service was restored, we proceeded to wait 24 hours before crediting the account for withdrawal.
I hope this answers the query we got and sheds light on what happened from our side.
Thanks,
richie@bittrex
cryptoknightt is asking a serious sum up of the situation, can I ask the NEM trolls protecting the person attacking the exchanges to stop this farce. Bittrex courage and honesty responded about what happened .
A member of NEM team or ex member whatever they want to call it as they change their argument as I change pants , has tried or hacked exchanges.
I will sum it up with real fact its what people need not the corruption, contradictions of certain individuals from the NEM community
17th March I reported a member of NEM team was trying to hack exchanges and all I had was an answer in private from Jaco38 that was busy and will come back to me during the weekend and in public 18th March saying ''As far as I know the CECVW situation is handled so everyone can rest assured things are back to normal.''
Yes he was very busy trying to cover it up talking the same day with bittrex to who knows to cover up I dont know but judge that for yourself by reading the above email from bittrex but mainly read this '' a) Bittrex was not notified of the failed attempt to attack our exchange. I was made aware of the attempt to social engineer our process on March 17th, around 1 am PST, when talking to the developers in the NEM slack.''
Jaco38 you did not have time to talk to us but yes to hurry up to talk to bittrex what I told you! and you said to your community '' everyone can rest assured things are back to normal''
Jaco38 what kind of a person you are?
Then came patmast3r asking what was the situation and we explained by email and his responded to the community was the following:
''If the story that was told yesterday on a different channel is the story CECVW takes issue with, then noone has to worry about anything. Move along, nothing to see here.''
I told him the story I reported to bittrex and see the respond I had from patmast3r he is denying what bittrex told us just today, then after too much fud from some member of the NEM community and being totally ignored by NEM management I decided to write this:
https://bitcointalksearch.org/topic/m.14260914And terrible lynched started against dannac and myself for reporting the hack of exchanges by a member of NEM or Ex member of NEM team too much conflict to know who he is now but if you check the first page of this thread he is under the tittle NEM Core Marketers, his name is Kodtycoon.
He tried to buy my silence not to report this this incident on 17th March:
KODTYCOON
if you delete that post, ill send you your coins from my bounty but ill be routing them through poloniex to hide my account. otherwise you can wait until bittrex return the other coins. your choice.
so, delete the post and get your coins back from my bounty AFTER being sent through poloniex, or wait for bittrex, which i have shown proof of? up to you.
AND BELOW IS MY ANSWER
I dont want stolen coins, I want the stake of my friend dont ever tell me yuo are giving me part of the bounty, what if yuo do its the stake of my friends! I dont steal and I dont want part of the bounty i want the stake of my friends not dirty coins!''
Yesterday Kodytcoon published a link with some of our email no all so we can not see he really tried to hacked these exchanges this is some part of what he said:
''a pastebin post. its the main bulk of posts. there was soe more prior to the first in the link but they are not really important or prove anyone right or wrong so i just left them out''
He deleted this :
''im broke now. had to cash out over the last year because i needed the money. when you gave me that key for the account, i had 0 nem, 0 bitcoin, 0 any coin... then i was able to use those coins to hack btc38 and they are giving me a bounty for telling them about it and returning the coins that i stole. then i used your coins to try the same at bittrex. still waiting to see if it works. it only requires me to deposit coins and withdraw them so the coins are never at risk. so i litterally had 0 currency i could have used to test. but now i do, once btc38 pay me, so once i get your coins back i can return them so all is good. Smiley''
See below 3 emails he deleted the middle one:
kodtycoon
Hero Member
*****
Offline
Activity: 644
View Profile Personal Message (Offline)
Trust: 0: -0 / +0
Re: (No subject)
« Sent to: CECVW on: March 15, 2016, 05:08:11 PM »
« You have forwarded or responded to this message. »
Reply with quoteQuote ReplyReply Remove this messageDelete
its in bittrex. its safe though. Smiley i wuldnt put your coins at risk. i had no choice but to use your coins cos i didnt have any. couldnt have tested the exchange otherwise. hopefully you can understand that i didnt have any coins what so ever and saw an opportunity to get back in without stealing coins from anyone. ya cant blame me for taking advantage of that Smiley
Report To Admin
NEM :: New Economy Movement
"Pioneering a revolutionary novel consensus mechanism called proof of importance."
NEM Technical Reference (White Paper)
kodtycoon
Hero Member
*****
Offline
Activity: 644
View Profile Personal Message (Offline)
Trust: 0: -0 / +0
Re: (No subject)
« Sent to: CECVW on: March 15, 2016, 07:01:40 PM »
Reply with quoteQuote ReplyReply Remove this messageDelete
go back thru the public posts on the nem thread.
im broke now. had to cash out over the last year because i needed the money. when you gave me that key for the account, i had 0 nem, 0 bitcoin, 0 any coin... then i was able to use those coins to hack btc38 and they are giving me a bounty for telling them about it and returning the coins that i stole. then i used your coins to try the same at bittrex. still waiting to see if it works. it only requires me to deposit coins and withdraw them so the coins are never at risk. so i litterally had 0 currency i could have used to test. but now i do, once btc38 pay me, so once i get your coins back i can return them so all is good. Smiley
Report To Admin
NEM :: New Economy Movement
"Pioneering a revolutionary novel consensus mechanism called proof of importance."
NEM Technical Reference (White Paper)
kodtycoon
Hero Member
*****
Offline
Activity: 644
View Profile Personal Message (Offline)
Trust: 0: -0 / +0
Re: (No subject)
« Sent to: CECVW on: March 15, 2016, 07:03:01 PM »
« You have forwarded or responded to this message. »
Reply with quoteQuote ReplyReply Remove this messageDelete
sorry that i lied to you but i had to do something to get some coins because i cant afford to put money into bitcoin. :/ least i didnt straight up steal your coins when i very well could have. wouldnt do that to you or anyone. Smiley that is why i am a co-signatory on the nem funds because even when i have nothing, i can be trusted to do the right thing. Wink
AND HERE ITS WHAT HE POSTED IN
http://pastebin.com/ipttRjL3 :
its in bittrex. its safe though. Smiley i wuldnt put your coins at risk. i had no choice but to use your coins cos i didnt have any. couldnt have tested the exchange otherwise. hopefully you can understand that i didnt have any coins what so ever and saw an opportunity to get back in without stealing coins from anyone. ya cant blame me for taking advantage of that Smiley
him:
what do u mean u dont have any NEM? any in the exchange but you have in your walllet, you told me you had over 30 stakes...I am sure yuo coud have test with some
me:
sorry that i lied to you but i had to do something to get some coins because i cant afford to put money into bitcoin. :/ least i didnt straight up steal your coins when i very well could have. wouldnt do that to you or anyone. Smiley that is why i am a co-signatory on the nem funds because even when i have nothing, i can be trusted to do the right thing. Wink
CAN YOU SEE HE DELETED IT?
BELOW IS ANOTHER ONE HE DELETED:
He send me an email saying the CEO of BTC38 saying thank you to him for finding a flaw, below is his email:
''do you even know what bounty means?HuhHuh
the CEO said "thank you for finding fault in my exchange, here is 5m bounty reward for doing so and returning the coins"...
i DIDNT EVEN ASK FOR MONEY. IT WAS A GIFT.''
Well and so many thing he deleted from our emails on
http://pastebin.com/ipttRjL3...see his post
https://bitcointalksearch.org/topic/nem-xem-official-thread-100-new-code-easy-to-use-apis-654845Then a member of NEM community whether planned or not to create a cover up asking the following to look like he was really doing testing, are they taking us for fools???; '' What about the exchange vulnerability? that's all that effects anyone else. Details please, are all exchanges patched?''
and kodtycoon answered:
'' in the process. There's a shit lot of exchanges. I very much doubt someones going to figure it out before I get round to them all. All the big exchanges are safe. Iv either checked them (the biggest ones) or informed them(not as big but still not insignificant.) At this point no one has anything to worry about.''
according patmast3r: '' Kodtycoon is not affiliated with NEM in any official capacity.'' So an outsider of NEM Team is doing these testing, hacking or whatever they want to called it but bittrex was made aware of the attempt to social engineer attend''
Do you call that testing?
But the controversy carry on and on and on....then Koddtycoon came back saying he will step down officially if Nem community asking to do so....... so confusing, right? he is doing testing called social engineer attack but we dont know if he is a member of NEM anymore. Some people say he is not so to clean the image of NEM but he said he is as he will step down if he is asked so... as I said in the first page of this thread is showing as a member of the team.
And that is what I was reporting since the beginning 17 March and people still calling me Troll, all these corrupted people has big money in NEM and it might be ''normal'' to say anything not to lose theri money, that my friends is called ''selling your soul for money''
I dont know what else to say really..there still more but....this can give you an idea
What am I asking?
for Jaco38 to step done for covering up this shit and make dannac and me to go through all this ordeal for days, patmast3r and kodtycoon cut off any relation with NEM for the good being of NEM and any other person who is involved on this scandal. And an official public apology to me, dannac and all they exchanges Kodtycoon tried or hacked and return of any bounty paid to koddtycoon by the exchanges and if kodtycoon spent it all alreadty then to be paid by NEM management.